Overview

  • Generic key-value store—arbitrary secrets
  • Enabled by default at secret/ path
  • V1 and V2
    • V2 includes versioning

Operations

Write

vault kv put secret/<PATH> <KEY>=<VALUE>

Read

vault kv get [-field=<KEY>] secret/<PATH>

Delete

vault kv delete secret/<PATH>

Undelete

vault kv undelete -versions=<VERSION> secret/<PATH>

Graph View